Oracle
oracle
10,484 CVEs • 1,055 products
Products (1,055)
Click to collapseToggle
Products (1,055)
Click to collapse
CVEs (10,484)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Unspecified vulnerability in the Oracle Applications Technology Stack component in Oracle E-Business Suite 12.0.4 allows remote attackers to affect confidentiality via unknown vectors. |
1Oracle 3Database 10g Database 11iDatabase 9iApr 23, 2026 Oct 14, 2008 N/A· v4 N/A· v3 5.5 MEDIUM· v2 Unspecified vulnerability in the Workspace Manager component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.3, and 11.1.0.6 allows remote authenticated users to affect confidentiality and integrity, related to S...Show more |
1Oracle 3Database 10g Database 11iDatabase 9iApr 23, 2026 Oct 14, 2008 N/A· v4 N/A· v3 5.5 MEDIUM· v2 Unspecified vulnerability in the Workspace Manager component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.3, and 11.1.0.6 allows remote authenticated users to affect confidentiality and integrity, related to S...Show more |
1Oracle 3Database 10g Database 11iDatabase 9iApr 23, 2026 Oct 14, 2008 N/A· v4 N/A· v3 5.5 MEDIUM· v2 Unspecified vulnerability in the Workspace Manager component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.3, and 11.1.0.6 allows remote authenticated users to affect confidentiality and integrity, related to S...Show more |
Unspecified vulnerability in the Upgrade component in Oracle Database 10.1.0.5 and 10.2.0.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors. |
Unspecified vulnerability in the Oracle Portal component in Oracle Application Server 9.0.4.3 and 10.1.2.3 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2008-3975. |
Unspecified vulnerability in the Oracle Spatial component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a dif...Show more |
Unspecified vulnerability in the Oracle Portal component in Oracle Application Server 9.0.4.3 and 10.1.2.3 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2008-3977. |
Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.2 allows remote attackers to affect confidentiality and integrity via unknown vectors. NOTE: the previous...Show more |
Unspecified vulnerability in the Oracle OLAP component in Oracle Database 10.1.0.5 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors. |
1Oracle 2Application Server E Business SuiteApr 23, 2026 Oct 14, 2008 N/A· v4 N/A· v3 1.7 LOW· v2 Unspecified vulnerability in the Oracle Reports Developer component in Oracle Application Server 1.0.2.2, 9.0.4.3, and 10.1.2.2, and E-Business Suite 11.5.10.2, allows remote authenticated users to affect availability vi...Show more |
Unspecified vulnerability in the Oracle JDeveloper component in Oracle Application Server 10.1.2.2 allows local users to affect confidentiality via unknown vectors. |
Cross-site scripting (XSS) vulnerability in the command-line client in MySQL 5.0.26 through 5.0.45, and other versions including versions later than 5.0.45, when the --html option is enabled, allows attackers to inject a...Show more |
4Canonical DebianMysql+1 more4Debian Linux MysqlMysql+1 moreApr 23, 2026 Sep 18, 2008 N/A· v4 N/A· v3 4.6 MEDIUM· v2 MySQL before 5.0.67 allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2) INDEX DIRECTORY arguments that are originally associated with pa...Show more |
MySQL 5.0.51a allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2) INDEX DIRECTORY arguments that are associated with symlinks within pat...Show more |
MySQL 5.0 before 5.0.66, 5.1 before 5.1.26, and 6.0 before 6.0.6 does not properly handle a b'' (b single-quote single-quote) token, aka an empty bit-string literal, which allows remote attackers to cause a denial of ser...Show more |
The VBoxDrvNtDeviceControl function in VBoxDrv.sys in Sun xVM VirtualBox before 1.6.4 uses the METHOD_NEITHER communication method for IOCTLs and does not properly validate a buffer associated with the Irp object, which...Show more |
3Bea Bea SystemsOracle4Apache Connector In Weblogic Server Weblogic ServerWeblogic Server+1 moreApr 23, 2026 Jul 22, 2008 N/A· v4 N/A· v3 10.0 HIGH· v2 Stack-based buffer overflow in the Apache Connector (mod_wl) in Oracle WebLogic Server (formerly BEA WebLogic Server) 10.3 and earlier allows remote attackers to execute arbitrary code via a long HTTP version string, as...Show more |
1Oracle 3Jd Edwards Enterpriseone Peoplesoft EnterprisePeoplesoft Peopletools ComponentApr 23, 2026 Jul 15, 2008 N/A· v4 N/A· v3 6.5 MEDIUM· v2 Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different v...Show more |
1Oracle 3Jd Edwards Enterpriseone Peoplesoft EnterprisePeoplesoft Peopletools ComponentApr 23, 2026 Jul 15, 2008 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different v...Show more |